- Related Stories
-
China accused of cyberattacks on New Zealand
September 13, 2007 -
Homeland Security IT chief blamed for cyberwoes
June 20, 2007 -
Coming attractions for history's first cyberwar
June 15, 2007 -
Cyberattack in Estonia--what it really means
May 29, 2007 -
Cyberattacks at federal agencies draw House scrutiny
April 19, 2007 -
Homeland Security finally transcends F cybersecurity grade
April 12, 2007 -
Homeland Security sees cyberthreats on the rise
February 8, 2007 -
Cyberthreat experts to meet at secretive conference
January 22, 2007 -
Senator blasts Homeland Security's Net efforts
July 28, 2006 -
Locking down America's Net defenses
February 16, 2006 -
U.S. cybersecurity due for FEMA-like calamity?
October 10, 2005 -
Power outage hits Northeast
August 15, 2003 - Related Blogs
-
Will cyberintrusions crash U.S. electrical grid?
October 17, 2007 -
U.S. cybersecurity czar: Help us help you
October 1, 2007 -
Cyberattacks at DHS prompt new finger-pointing
September 24, 2007 -
Bush, Estonian president talk cyberattacks
June 25, 2007 -
Congress to grill Homeland Security on cyberweaknesses
June 19, 2007
The SANS Institute, a computer-security training body, reported the CIA's disclosure on Friday. CIA senior analyst Tom Donahue told a SANS Institute conference on Wednesday in New Orleans that the CIA had evidence of successful cyberattacks against critical national infrastructures outside the United States.
"We have information that cyberattacks have been used to disrupt power equipment in several regions outside the U.S.," Donahue said. "In at least one case, the disruption caused a power outage affecting multiple cities."
Donahue added that the CIA does not know who executed the attacks or why but that all of the attacks involved "intrusions through the Internet."
The CIA analyst added that his agency had evidence of blackmail demands following demonstrations of successful intrusions.
"We have information, from multiple regions outside the U.S., of cyberintrusions into utilities, followed by extortion demands," Donahue said. "We suspect, but cannot confirm, that some of these attackers had the benefit of inside knowledge."
The CIA does not normally make this information public. According to Donahue, the CIA actively and thoroughly considered the benefits and risks of making this information public and came down on the side of disclosure, the SANS Institute reported.
Alan Paller, director of research at the SANS Institute, warned more than three years ago about demonstrations of denial-of-service attacks to computer systems, followed by demands for cash.
Tom Espiner of ZDNet UK reported from London.
See more CNET content tagged:
cyberattack, SANS Institute, blackout, U.S., attack






- Do the Google news search.
- by cyberbian January 22, 2008 10:15 PM PST
- I thought the refusal to name names was suspicious and hinted at disinformation.<br /><br />A Google news search makes this credible to me!<br /><br />You cannot hide what is already public knowledge. It only leaves to speculation, how many players are active in this cyberwar. I make out at least two based on my presumption that all blackouts searched are player generated. <br /><br />I speculate that where two are obvious, more are in play.
- Like this Reply to this comment
-
-
- Did you really expect them to announce WWIII has begun!
- by cyberbian January 22, 2008 10:22 PM PST
- The most obvious reason that the CIA would hide the targets is that it reveals the identitys of the attackers.<br /><br />If you knew the player roster, you might realize that WWIII is underway!
- Like this
-
(19 Comments)